How AI is applied across API Evangelist and APIs.io. Read my AI disclosure →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

Venafi Certificate Management APIs API

The endpoints in this section manage TLS certificates. If you want certificates to secure SSH keys, see the _SshCertificates_ section## PKIX Parameter Set ##As of TPP 25.1 algorithms are identified by an OID called PKIX Parameter Set. The following table lists the OID for each algorithm: **RSA Algorithms**| Algorithm | PKIX Parameter Set | Description ||-----------|--------------------|--------------------------|| RSA 1024 | 1.3.6.1.4.1.28783.10.1.1.1024| RSA 1024 bits offers moderate security but is now considered vulnerable and outdated for most modern applications. || RSA 2048 | 1.3.6.1.4.1.28783.10.1.1.2048| RSA 2048 bits offers strong security and is widely used for modern encryption and digital signatures. || RSA 3072 | 1.3.6.1.4.1.28783.10.1.1.3072| RSA 3072 bits provides a higher security level, suitable for long-term protection of sensitive data. || RSA 4096 | 1.3.6.1.4.1.28783.10.1.1.4096| RSA 4096 bits offers very high security, commonly used for highly sensitive data and long-term encryption. || RSA 8192 | 1.3.6.1.4.1.28783.10.1.1.8192| RSA 8192 bits provides extremely high security, used for the most sensitive data and long-term protection. || RSA PSS/OAEP 1024 | 1.3.6.1.4.1.28783.10.1.2.1024| RSA 1024 bits PSS provides moderate security for digital signatures, with PSS offering improved resistance against certain attacks, though it's now considered vulnerable for most applications. || RSA PSS/OAEP 2048 | 1.3.6.1.4.1.28783.10.1.2.2048| RSA 2048 bits PSS offers strong security with enhanced resistance to forgery and adaptive chosen-message attacks, making it widely used in modern systems. || RSA PSS/OAEP 3072 | 1.3.6.1.4.1.28783.10.1.2.3072| RSA 3072 bits PSS provides enhanced security for long-term digital signature protection, with PSS improving resistance to certain signature-related attacks. || RSA PSS/OAEP 4096 | 1.3.6.1.4.1.28783.10.1.2.4096| RSA 4096 bits PSS provides very high security for digital signatures, with PSS offering added protection against vulnerabilities in deterministic signature schemes. || RSA PSS/OAEP 8192 | 1.3.6.1.4.1.28783.10.1.2.8192| RSA 8192 bits PSS offers extremely high security for critical digital signatures, with PSS further strengthening resistance to advanced cryptographic attacks and long-term protection. |**Elliptic Curve Digital Signature Algorithms (ECDSA)**| Algorithm | PKIX Parameter Set | Description ||-----------|--------------------|--------------------------|| ECDSA P-256 | 1.3.6.1.4.1.28783.10.2.1.256| Digital signature algorithm based on the NIST P-256 curve, providing 128-bit security. || ECDSA P-384 | 1.3.6.1.4.1.28783.10.2.1.384| Digital signature algorithm based on the NIST P-384 curve, providing 192-bit security. || ECDSA P-521 | 1.3.6.1.4.1.28783.10.2.1.521| Digital signature algorithm based on the NIST P-521 curve, providing 256-bit security. || Brainpool P-256r1 | 1.3.6.1.4.1.28783.10.2.2.1| Brainpool P256 is a 256-bit elliptic curve offering strong security for digital signatures and key exchange. || Brainpool P-384r1 | 1.3.6.1.4.1.28783.10.2.2.2| Brainpool P384 is a 384-bit elliptic curve providing enhanced security for high-assurance applications. || Brainpool P-512r1 | 1.3.6.1.4.1.28783.10.2.2.3| Brainpool P512 is a 512-bit elliptic curve offering very high security for sensitive data and long-term protection. || Brainpool P-160r1 | 1.3.6.1.4.1.28783.10.2.2.4| Brainpool P160 is a 160-bit curve, offering moderate security for lightweight cryptographic applications. || Brainpool P-160t1 | 1.3.6.1.4.1.28783.10.2.2.5| Brainpool P160T is a 160-bit twisted curve, offering efficient performance and moderate security for lightweight applications. || Brainpool P-192r1 | 1.3.6.1.4.1.28783.10.2.2.6| Brainpool P192 is a 192-bit curve providing a balanced security level for general-purpose cryptography. || Brainpool P-192t1 | 1.3.6.1.4.1.28783.10.2.2.7| Brainpool P192T is a 192-bit twisted curve, optimized for faster cryptographic operations with improved security. || Brainpool P-224r1 | 1.3.6.1.4.1.28783.10.2.2.8| Brainpool P224 is a 224-bit curve offering strong security for medium-strength cryptographic applications. || Brainpool P-224t1 | 1.3.6.1.4.1.28783.10.2.2.9| Brainpool P224T is a 224-bit twisted Edwards curve, optimized for efficient cryptographic operations with strong security. || Brainpool P-256t1 | 1.3.6.1.4.1.28783.10.2.2.10| Brainpool P256T is a 256-bit twisted curve, optimized for faster operations and improved security in digital signatures and key exchange. || Brainpool P-320r1 | 1.3.6.1.4.1.28783.10.2.2.11| Brainpool P320 is a 320-bit curve providing strong security for cryptographic operations, suitable for high-security applications. || Brainpool P-320t1 | 1.3.6.1.4.1.28783.10.2.2.12| Brainpool P320T is a 320-bit twisted curve, balancing strong security and efficient performance for cryptographic tasks. || Brainpool P-384t1 | 1.3.6.1.4.1.28783.10.2.2.13| Brainpool P384T is a 384-bit twisted curve providing strong security for digital signatures and key exchange, optimized for performance and efficiency. || Brainpool P-512t1 | 1.3.6.1.4.1.28783.10.2.2.14| Brainpool P512T is a 512-bit twisted curve, providing very high security and optimized for efficient cryptographic processing. || SEC P-256k1 | 1.3.6.1.4.1.28783.10.2.3.1| Sec P256K is a 256-bit curve widely used in Bitcoin and blockchain technologies, optimized for fast elliptic curve operations. || SEC P-224r1 | 1.3.6.1.4.1.28783.10.2.3.2| Sec P224 is a 224-bit curve offering strong security for general-purpose cryptography, commonly used in digital signatures. || SEC P-224k1 | 1.3.6.1.4.1.28783.10.2.3.3| Sec P224K is a 224-bit curve used in cryptographic applications with an emphasis on fast and efficient operations. || SEC P-192r1 | 1.3.6.1.4.1.28783.10.2.3.4| Sec P192 is a 192-bit curve providing moderate security for lightweight cryptographic applications. || SEC P-192k1 | 1.3.6.1.4.1.28783.10.2.3.5| Sec P192K is a 192-bit curve widely used in blockchain and cryptographic systems, optimized for efficient operations. |**Edwards Curve Algorithms**| Algorithm | PKIX Parameter Set | Description ||-----------|--------------------|--------------------------|| Ed25519 | 1.3.6.1.4.1.28783.10.3.25519| Ed25519 is a high-security elliptic curve signature algorithm, designed for fast performance and resistance to side-channel attacks. || Ed448 | 1.3.6.1.4.1.28783.10.3.44448| Ed448 is a highly secure elliptic curve signature algorithm, offering stronger security than ED25519, with a larger key size. |**ML-DSA Quantum-Safe Algorithms**| Algorithm | PKIX Parameter Set | Description ||-----------|--------------------|--------------------------|| ML-DSA44 | 1.3.6.1.4.1.28783.10.4.44| ML-DSA44 offers 128-bit quantum security, designed for lightweight applications that require post-quantum resilience with moderate security. || ML-DSA65 | 1.3.6.1.4.1.28783.10.4.65| ML-DSA65 provides 192-bit quantum security, offering stronger protection against quantum adversaries while maintaining efficiency for broader use cases. || ML-DSA87 | 1.3.6.1.4.1.28783.10.4.87| ML-DSA87 delivers 256-bit quantum security, designed for high-assurance applications needing robust resistance to future quantum computing threats. |**SLH-DSA Quantum-Safe Algorithms**| Algorithm | PKIX Parameter Set | Description ||-----------|--------------------|--------------------------|| SLH-DSA-SHA2-128s | 1.3.6.1.4.1.28783.10.5.1.1| SLH-DSA SHA2 128bit Small: Offers 128-bit security with SHA-2, optimized for small footprint applications. || SLH-DSA-SHA2-128f | 1.3.6.1.4.1.28783.10.5.1.2| SLH-DSA SHAKE 128bit Fast: Delivers 128-bit security with SHAKE, optimized for fast performance. || SLH-DSA-SHA2-192s | 1.3.6.1.4.1.28783.10.5.1.3| SLH-DSA SHA2 192bit Small: Offers 192-bit security with SHA-2, suitable for small footprint applications. || SLH-DSA-SHA2-192f | 1.3.6.1.4.1.28783.10.5.1.4| SLH-DSA SHA2 192bit Fast: Ensures 192-bit security with SHA-2, optimized for fast performance. || SLH-DSA-SHA2-256s | 1.3.6.1.4.1.28783.10.5.1.5| SLH-DSA SHA2 256bit Small: Offers 256-bit security with SHA-2, suitable for small footprint applications. || SLH-DSA-SHA2-256f | 1.3.6.1.4.1.28783.10.5.1.6| SLH-DSA SHA2 256bit Small: Offers 256-bit security with SHA-2, suitable for small footprint applications. || SLH-DSA-Shake-128s | 1.3.6.1.4.1.28783.10.5.1.7| SLH-DSA SHAKE 128bit Small: Provides 128-bit security with SHAKE, designed for small footprint applications. || SLH-DSA-Shake-128f | 1.3.6.1.4.1.28783.10.5.1.8| SLH-DSA SHAKE 128bit Fast: Ensures 128-bit security with SHAKE, optimized for fast performance. || SLH-DSA-Shake-192s | 1.3.6.1.4.1.28783.10.5.1.9| SLH-DSA SHAKE 192bit Small: Provides 192-bit security with SHAKE, designed for small footprint applications. || SLH-DSA-Shake-192f | 1.3.6.1.4.1.28783.10.5.1.10| SLH-DSA SHAKE 192bit Fast: Delivers 192-bit security with SHAKE, optimized for fast performance. || SLH-DSA-Shake-256s | 1.3.6.1.4.1.28783.10.5.1.11| SLH-DSA SHAKE 256bit Small: Offers 256-bit security with SHAKE, suitable for small footprint applications. || SLH-DSA-Shake-256f | 1.3.6.1.4.1.28783.10.5.1.12| SLH-DSA SHA2 256bit Fast: Offers 256-bit security with SHAKE, optimized for fast performance. |**Pre-Hash SLH-DSA Quantum-Safe Algorithms**| Algorithm | PKIX Parameter Set | Description ||-----------|--------------------|--------------------------|| HASH-SLH-DSA-SHA2-128s-SHA256 | 1.3.6.1.4.1.28783.10.5.2.1| Pre-Hash SLH-DSA SHA2 128bit Small: Offers 128-bit security with SHA-2, optimized for small footprint applications. || HASH-SLH-DSA-SHA2-128f-SHA256 | 1.3.6.1.4.1.28783.10.5.2.2| Pre-Hash SLH-DSA SHA2 128bit Fast: Delivers 128-bit security with SHA-2, optimized for fast performance. || HASH-SLH-DSA-SHA2-192s-SHA512 | 1.3.6.1.4.1.28783.10.5.2.3| Pre-Hash SLH-DSA SHA2 192bit Small: Offers 192-bit security with SHA-2, suitable for small footprint applications. || HASH-SLH-DSA-SHA2-192f-SHA512 | 1.3.6.1.4.1.28783.10.5.2.4| Pre-Hash SLH-DSA SHA2 192bit Fast: Ensures 192-bit security with SHA-2, optimized for fast performance. || HASH-SLH-DSA-SHA2-256s-SHA512 | 1.3.6.1.4.1.28783.10.5.2.5| Pre-Hash SLH-DSA SHA2 256bit Small: Offers 256-bit security with SHA-2, suitable for small footprint applications. || HASH-SLH-DSA-SHA2-256f-SHA512 | 1.3.6.1.4.1.28783.10.5.2.6| Pre-Hash SLH-DSA SHA2 256bit Small: Offers 256-bit security with SHA-2, suitable for small footprint applications. || HASH-SLH-DSA-Shake-128s-Shake128 | 1.3.6.1.4.1.28783.10.5.2.7| Pre-Hash SLH-DSA SHAKE 128bit Small: Provides 128-bit security with SHAKE, designed for small footprint applications. || HASH-SLH-DSA-Shake-128f-Shake128 | 1.3.6.1.4.1.28783.10.5.2.8| Pre-Hash SLH-DSA SHA2 128bit Fast: Ensures 128-bit security with SHA-2, optimized for fast performance. || HASH-SLH-DSA-Shake-192s-SHAke256 | 1.3.6.1.4.1.28783.10.5.2.9| Pre-Hash SLH-DSA SHAKE 192bit Small: Provides 192-bit security with SHAKE, designed for small footprint applications. || HASH-SLH-DSA-Shake-192f-SHAke256 | 1.3.6.1.4.1.28783.10.5.2.10| Pre-Hash SLH-DSA SHAKE 192bit Fast: Delivers 192-bit security with SHAKE, optimized for fast performance. || HASH-SLH-DSA-Shake-256s-SHAke256 | 1.3.6.1.4.1.28783.10.5.2.11| Pre-Hash SLH-DSA SHA2 256bit Small: Offers 256-bit security with SHA-2, suitable for small footprint applications. || HASH-SLH-DSA-Shake-256f-SHAke256 | 1.3.6.1.4.1.28783.10.5.2.12| Pre-Hash SLH-DSA SHA2 256bit Fast: Offers 256-bit security with SHAKE, optimized for fast performance. |**Composite Quantum-Safe Algorithms**| Algorithm | PKIX Parameter Set | Description ||-----------|--------------------|--------------------------|| Composite ML-DSA44 / PSS2048 | 1.3.6.1.4.1.28783.10.7.1| ML-DSA44 / RSA 2048 PSS combines 128-bit quantum security of ML-DSA44 with RSA2048PSS, suitable for moderate security applications requiring post-quantum and classical resilience. || Composite ML-DSA44 / RSA2048 | 1.3.6.1.4.1.28783.10.7.2| ML-DSA44 / RSA 2048 combines 128-bit quantum security of ML-DSA44 with RSA 2048, suitable for moderate security applications requiring post-quantum and classical resilience. || Composite ML-DSA44 / Ed25519 | 1.3.6.1.4.1.28783.10.7.3| ML-DSA44 / Ed25519 offers 128-bit quantum security of ML-DSA44 with Ed25519, optimized for fast and secure digital signatures. || Composite ML-DSA44 / ECP256 | 1.3.6.1.4.1.28783.10.7.4| ML-DSA44 / ECP256 provides 128-bit quantum security of ML-DSA44 with ECDSA P-256, ideal for secure communications and data integrity. || Composite ML-DSA65 / PSS3072 | 1.3.6.1.4.1.28783.10.7.5| ML-DSA65 / RSA 3072 PSS combines 192-bit quantum security of ML-DSA65 with RSA 3072 PSS, suitable for long-term protection and moderate security applications. || Composite ML-DSA65 / RSA3072 | 1.3.6.1.4.1.28783.10.7.6| ML-DSA65 / RSA 3072 offers 192-bit quantum security of ML-DSA65 with RSA 3072, ideal for secure communications and data integrity. || Composite ML-DSA65 / PSS4096 | 1.3.6.1.4.1.28783.10.7.7| ML-DSA65 / RSA 4096 PSS provides 192-bit quantum security of ML-DSA65 with RSA 4096 PSS, suitable for highly sensitive data and long-term protection. || Composite ML-DSA65 / RSA4096 | 1.3.6.1.4.1.28783.10.7.8| ML-DSA65 / RSA 4096 combines 192-bit quantum security of ML-DSA65 with RSA 4096, ideal for high-security applications needing long-term protection. || Composite ML-DSA65 / ECP256 | 1.3.6.1.4.1.28783.10.7.9| ML-DSA65 / ECP256 offers 192-bit quantum security of ML-DSA65 with ECDSA P-256, designed for secure communications and data integrity. || Composite ML-DSA65 / ECP384 | 1.3.6.1.4.1.28783.10.7.10| ML-DSA65 / ECP384 offers 192-bit quantum security of ML-DSA65 with ECDSA P-384, ideal for high-security applications needing long-term protection. || Composite ML-DSA65 / Brainpool P-256 | 1.3.6.1.4.1.28783.10.7.11| ML-DSA65 / Brainpool P-256 provides 192-bit quantum security of ML-DSA65 with Brainpool P-256, designed for secure communications and data integrity. || Composite ML-DSA65 / Ed25519 | 1.3.6.1.4.1.28783.10.7.12| ML-DSA65 / Ed25519 combines 192-bit quantum security of ML-DSA65 with Ed25519, optimized for fast and secure digital signatures. || Composite ML-DSA87 / ECP384 | 1.3.6.1.4.1.28783.10.7.13| ML-DSA87 / ECP384 ensures 256-bit quantum security of ML-DSA87 with ECDSA P-384, suitable for highly sensitive data and long-term protection. || Composite ML-DSA87 / Brainpool P-384 | 1.3.6.1.4.1.28783.10.7.14| ML-DSA87 / Brainpool P-384 offers 256-bit quantum security of ML-DSA87 with Brainpool P-384, ideal for secure financial transactions and data integrity. || Composite ML-DSA87 / Ed448 | 1.3.6.1.4.1.28783.10.7.15| ML-DSA87 / Ed448 combines 256-bit quantum security of ML-DSA87 with Ed448, designed for high-security digital signatures and fast performance. || Composite ML-DSA87 / PSS4096 | 1.3.6.1.4.1.28783.10.7.16| ML-DSA87 / RSA 4096 PSS provides 256-bit quantum security of ML-DSA87 with RSA 4096 PSS, suitable for highly sensitive data and long-term protection. || Composite ML-DSA87 / PSS3072 | 1.3.6.1.4.1.28783.10.7.17| ML-DSA87 / RSA 3072 PSS provides 256-bit quantum security of ML-DSA87 with RSA 3072 PSS, suitable for highly sensitive data and long-term protection. || Composite ML-DSA87 / ECP521 | 1.3.6.1.4.1.28783.10.7.18| ML-DSA87 / ECP521 ensures 256-bit quantum security of ML-DSA87 with ECDSA P-521, suitable for highly sensitive data and long-term protection. |

Venafi Certificate Management APIs API is one of 58 APIs that Venafi publishes on the APIs.io network, described by a machine-readable OpenAPI specification.

Tagged areas include Certificate Management APIs. The published artifact set on APIs.io includes an OpenAPI specification and API documentation.

This API exposes 22 operations across 17 paths, and defines 40 schemas. It is described by OpenAPI 3.2.0, at version 26.1.1.

Requests are made against 3 base URLs: /, https://REPLACEdnsnameME/, https://{dnsname}/.

22 operations 17 paths 40 schemas 1 DELETE6 GET1 HEAD13 POST1 PUT

Metadata

The identity and technical contract details declared by the specification.

Specification
OpenAPI 3.2.0
API Version
26.1.1
Base URL
https://api.venafi.cloud
Authentication
HTTP Bearer
Resource Areas
1

Authentication & Security 1

Venafi Certificate Management APIs API declares 1 security scheme for authenticating requests. It accepts HTTP bearer tokens (AccessToken). By default, every request must be authenticated.

Paths & Operations 22

Across 17 paths, the API surfaces 22 operations — 1 DELETE, 6 GET, 1 HEAD, 13 POST, 1 PUT. Each is listed below with its method, path, parameters, and response codes.

Certificate Management APIs 22

The endpoints in this section manage TLS certificates.

POST
/vedsdk/certificates/Retrieve/{vaultId}
Retrieve a certificate by vault ID
Venafi_WebSDK_CertificateRequest_CertificateRequestRest_CertificateRetrieveByVaultId 1 param body → 200400
GET
/vedsdk/certificates/Retrieve/{vaultId}
Retrieve a certificate by vault ID (GET)
Venafi_WebSDK_CertificateRequest_CertificateRequestRest_CertificateRetrieveByVaultIdGet 9 params → 200202500400
GET
/vedsdk/certificates/{guid}/PreviousVersions
Get archived certificates
Venafi_WebSDK_CertificateRequest_CertificateRequestRest_CertificatePreviousVersions 3 params → 200400
POST
/vedsdk/certificates/Validate
Validate a deployed certificate
Venafi_WebSDK_CertificateRequest_CertificateRequestRest_CertificateValidate body → 200400
PUT
/vedsdk/certificates/{guid}
Set or update certificate attributes
Venafi_WebSDK_CertificateRequest_CertificateRequestRest_CertificatePut 1 param body → 200400
GET
/vedsdk/certificates/{guid}
Get certificate details
Venafi_WebSDK_CertificateRequest_CertificateRequestRest_GetCertificateDetails 1 param → 200500400
DELETE
/vedsdk/certificates/{guid}
Delete a certificate
Venafi_WebSDK_CertificateRequest_CertificateRequestRest_CertificateDelete 1 param → 200400
POST
/vedsdk/certificates/CheckPolicy
Check policy compliance
Venafi_WebSDK_CertificateRequest_CertificateRequestRest_CheckPolicy body → 200400
POST
/vedsdk/certificates/Request
Enroll or provision a certificate
Venafi_WebSDK_CertificateRequest_CertificateRequestRest_CertificateRequest body → 200202500400
POST
/vedsdk/certificates/Retrieve
Retrieve an issued certificate
Venafi_WebSDK_CertificateRequest_CertificateRequestRest_CertificateRetrieve body → 200202500400
GET
/vedsdk/certificates/Retrieve
Retrieve an issued certificate (GET)
Venafi_WebSDK_CertificateRequest_CertificateRequestRest_CertificateRetrieveGet 10 params → 200202500400
POST
/vedsdk/certificates/Renew
Renew a certificate
Venafi_WebSDK_CertificateRequest_CertificateRequestRest_CertificateRenew body → 200202500400
POST
/vedsdk/certificates/Revoke
Revoke a certificate
Venafi_WebSDK_CertificateRequest_CertificateRequestRest_CertificateRevoke body → 200202500400403
GET
/vedsdk/certificates/
Search certificates
Venafi_WebSDK_CertificateRequest_CertificateRequestRest_GetCertificates 53 params → 200500400
HEAD
/vedsdk/certificates/
Get certificates count
Venafi_WebSDK_CertificateRequest_CertificateRequestRest_GetCertificateCount 53 params → 200500
POST
/vedsdk/certificates/Associate
Associate an application
Venafi_WebSDK_CertificateRequest_CertificateRequestRest_CertificateAssociate body → 200400
POST
/vedsdk/certificates/Dissociate
Dissociate an application
Venafi_WebSDK_CertificateRequest_CertificateRequestRest_CertificateDissociate body → 200400
POST
/vedsdk/certificates/Push
Initiate provisioning
Venafi_WebSDK_CertificateRequest_CertificateRequestRest_CertificatePush body → 200400
POST
/vedsdk/certificates/Import
Import a certificate
Venafi_WebSDK_CertificateRequest_CertificateRequestRest_CertificateImport body → 200400
POST
/vedsdk/certificates/Reset
Reset processing state
Venafi_WebSDK_CertificateRequest_CertificateRequestRest_Reset body → 200400
POST
/vedsdk/certificates/Retry
Retry processing
Venafi_WebSDK_CertificateRequest_CertificateRequestRest_Retry body → 200400
GET
/vedsdk/certificates/{guid}/ValidationResults
Retrieve certificate validation results
Venafi_WebSDK_CertificateRequest_CertificateRequestRest_GetValidationResults 1 param → 200400403500204

Schemas 40

The contract defines 40 schemas that model the data the API accepts and returns. The most detailed are WebSDK_CertificateRequest_RequestRequest (39 properties), WebSDK_CertificateRequest_DetailedCertificateResult (22 properties), WebSDK_CertificateRequest_RenewRequest (11 properties), WebSDK_CertificateRequest_RequestResponse_Request (10 properties). Each schema is shown below with its type and property counts.

WebSDK_CertificateRequest_RevokeRequest
object
The class for certificate revoke method request.
6 properties
WebSDK_CertificateRequest_RequestResponse
object
The class for certificate request method response.
10 properties
WebSDK_CertificateRequest_ValidateResponse
object
Certificates validate response.
5 properties
WebSDK_CertificateRequest_ImportResponse
object
The class for import method response.
6 properties
WebSDK_CertificateRequest_CheckPolicyResponse
object
Check policy response.
3 properties
WebSDK_CertificateRequest_RetrieveResponse
object
The class for certificate retrieve response.
6 properties
WebSDK_CertificateRequest_ResetRequest
object
The class for certificate reset method request.
4 properties
Nullable_1_Core_Cryptography_SubjectAltNameType_
integernull
2: DNS Specifies the SubjestAltName is a DNS entry 1: RFC822 Specifies the SubjestAltName is an Email address 1: Email Specifies the SubjestAltName is an Email…
WebSDK_CertificateRequest_ImportRequest
object
The import method request.
7 properties
IO_Stream
object
WebSDK_CertificateRequest_ResetResponse
object
The class for certificate reset response.
5 properties
WebSDK_CertificateRequest_RetryRequest
object
The class for certificate retry method request.
2 properties
WebSDK_CertificateRequest_PutResponse
object
The class for put certificate method response.
3 properties
WebSDK_CertificateRequest_RenewResponse
object
The class for renew method response.
7 properties
WebSDK_CertificateRequest_DetailedCertificateResult
object
Detailed Certificate object containing all information for a certificate.
22 properties
WebSDK_CertificateRequest_RevokeResponse
object
The class for certificate revoke method response.
5 properties
WebSDK_CertificateRequest_ValidateRequest
object
Request to validate certificates.
2 properties
WebSDK_CertificateRequest_AssociateRequest
object
Request to associate certificate and applications.
3 properties
WebSDK_CertificateRequest_RetryResponse
object
The class for certificate retry method response.
2 properties
WebSDK_CertificateRequest_AssociateResponse
object
Certificate associate response.
3 properties
WebSDK_CertificateRequest_PutRequest__guid_
object
1 property 1 required
WebSDK_CertificateRequest_ValidationResultsResponse
object
The class for certificate validation results retrieve method response
2 properties
WebSDK_CertificateRequest_CheckPolicyRequest
object
Check policy request.
2 properties
WebSDK_CertificateRequest_DeleteResponse
object
The delete method response.
3 properties
WebSDK_CertificateRequest_RetrieveByVaultIdRequest_Retrieve__vaultId_
object
8 properties 5 required
WebSDK_CertificateRequest_CertificateResults
object
Result class containing list of results as well as paging links and count information.
5 properties
WebSDK_CertificateRequest_RequestRequest
object
The class for certificate request method response.
39 properties
WebSDK_CertificateRequest_DissociateRequest
object
Request to dissociate certificate and applications.
3 properties
Core_IdentityType
integer
0: Undefined Undefined 1: User User object 2: Group Group object 4: Container Container of users and groups 8: DistributionList Distribution List 16: Machine M…
WebSDK_CertificateRequest_RetrieveResponse_Retrieve__vaultId_
object
6 properties
Nullable_1_Core_Revocation_RevocationReason_
integernull
0: Unspecified No reason given (RFC) none 1: KeyCompromise The key was compromised (RFC) An issued certificate's private key was compromised 2: CACompromise Th…
WebSDK_CertificateRequest_PreviousVersionsResponse
object
The class for GET certificate previous versions method response.
4 properties
WebSDK_CertificateRequest_RenewRequest
object
The class for renew method request.
11 properties
WebSDK_CertificateRequest_RetrieveRequest_Retrieve
object
9 properties 2 required
WebSDK_CertificateRequest_RenewResponse_Renew
object
5 properties
WebSDK_CertificateRequest_PushResponse
object
Certificate push response.
3 properties
WebSDK_CertificateRequest_RequestResponse_Request
object
10 properties
WebSDK_CertificateRequest_DissociateResponse
object
Certificate dissociate response.
2 properties
Core_IdentityEntry_EntryState
integer
0: Normal No special state associated with the entry 1: Disabled The identity has been disabled 2: LockedOut The identity has been locked out 4: Deleted The id…
WebSDK_CertificateRequest_PushRequest
object
Request for certificate provisioning to some or all consumers which are valid application DNs for this certificate.
3 properties

Specification

The full machine-readable OpenAPI contract behind this narrative.

Source

venafi-certificate-management-apis-api-openapi.yml Raw ↑

Other APIs Venafi publishes across the network.

Venafi Access Management APIs API
Venafi AlgorithmSelector APIs API
Venafi Application API
Venafi Authentication Server APIs API
Venafi Certificate Approvals API
Venafi Certificate Auto-renewal Monitoring API
Venafi Certificate Discovery API
Venafi Certificate Expiration Reports API
Venafi Certificate Import API
Venafi Certificate Installations API
Venafi Certificate Inventory Monitoring API
Venafi Certificate Policy API
Where this information came from

This is an independent, third-party profile of Venafi Certificate Management APIs API, published by API Evangelist. We do not operate, host, resell, or support these APIs, and we are not affiliated with or endorsed by the company unless stated above. Everything here is built from publicly available information — the company's own site, developer portal, documentation, public repositories, and the specifications it publishes for public use. Nothing is obtained by breaching a system, defeating an access control, or using credentials.

The Kin Score and Agent Readiness rating are independently calculated assessments of a company's public API artifacts, scored against a published rubric. They are not certifications, endorsements, security assessments, or audits.

Corrections, re-scores, and removal are free — no partnership or purchase required, and you do not need to justify the request. A removed company is recorded as unrated, never scored zero for having asked. Acknowledgement within one business day; removal within two.

info@apievangelist.com · Read the full data-sourcing policy →
On a security or compliance team? Put security in the subject line and you will get a person, not a form — we will tell you exactly which public URLs this profile was built from.